Security & Account Safety
Your BrikSync PropOS account holds sensitive data about your properties, tenants, and financial records. We strongly recommend enabling all available security features to protect your account.Two-Factor Authentication (2FA / MFA)
Two-factor authentication adds a second layer of security to your login. Even if someone obtains your password, they cannot log in without the second factor.Enabling 2FA
- Go to Settings → Security.
- Click Enable Two-Factor Authentication.
- Choose your preferred method:
- Authenticator App — use an app such as Google Authenticator, Authy, or 1Password to generate one-time codes. This is the recommended method.
- Email OTP — a one-time code sent to your registered email address each time you log in.
- Follow the setup steps for your chosen method.
- Save your backup codes in a secure location. These can be used to access your account if you lose access to your 2FA method.
Disabling 2FA
You can disable 2FA from Settings → Security → Two-Factor Authentication. We do not recommend doing this unless you are switching to a different 2FA method.Organisation Admins can require 2FA for all team members from Settings → Organisation → Security
Policy. When this setting is enabled, team members must set up 2FA before they can access the
platform.
Password Security
Changing Your Password
- Go to Settings → Security → Change Password.
- Enter your current password.
- Enter and confirm your new password.
- Click Update Password.
Forgotten Password
If you cannot log in, go to briksync.com and click Forgot Password on the login page. Enter your email address and we will send you a password reset link. Reset links expire after 30 minutes.Session Management
BrikSync PropOS keeps a record of your active sessions — the devices and browsers where you are currently logged in.Viewing Active Sessions
- Go to Settings → Security → Active Sessions.
- You will see a list of sessions including device type, browser, approximate location, and last active time.
Revoking a Session
If you see a session you do not recognise:- Click Revoke next to the suspicious session.
- That session will be immediately logged out.
Email Address Security
Your email address is used to log in and receive important account notifications. To change it:- Go to Settings → Profile.
- Click Change Email.
- Enter your new email address.
- We will send a verification link to the new address.
- Click the link to confirm the change.
GDPR data requests
If you need to export your personal data, request account deletion, or erase personally identifiable information (PII), you can submit a GDPR data subject request directly from your account settings.Available request types
| Request type | Description |
|---|---|
| Export | Generates a downloadable archive of all personal data associated with your account. |
| Deletion | Requests permanent deletion of your account and all associated data. |
| Erasure | Requests removal of specific personally identifiable information while keeping your account active. |
Submitting a request
- Go to Settings → Security → GDPR Data Requests.
- Select the request type — export, deletion, or erasure.
- Click Submit Request.
Request statuses
| Status | Meaning |
|---|---|
| pending | Request received and awaiting processing. |
| processing | Request is being processed. |
| completed | Request has been fulfilled. |
| failed | An error occurred during processing. Contact support. |
Admins can initiate PII erasure requests on behalf of team members from Settings → Organisation → Team Members. All GDPR data requests are logged for audit purposes.
Recognising Suspicious Activity
If you notice anything unusual — unexpected logins, changes you did not make, or emails about activity you did not initiate — take these steps immediately:- Change your password.
- Revoke all other sessions from Settings → Security → Active Sessions.
- Review the Audit Log (Admin accounts) for any recent changes.
- Contact BrikSync support through the in-app help widget.
Built by Errsol Technologies LLP · Karan · BrikSync PropOS